Splunk Search

Splunk Search
Community Activity
motobeats
When I run the MAP search below, the events that I get back do not match the ones used to generate the statistics tab...
by motobeats Path Finder in Splunk Search 01-07-2016
0 5
0
5
thisissplunk
Looked at join and append. Tried both, couldn't get them working. I need your eyes to help me here! This is my curre...
by thisissplunk Builder in Splunk Search 01-07-2016
1 7
1
7
athorat
Hi I have to extract start date, end date, and the duration of a job based on the following two events: Started: 2...
by athorat Communicator in Splunk Search 01-07-2016
0 13
0
13
z001k6jr
I have to setup Splunk for 100 servers, each server will have 5-10 JVMs, Each JVM generates 3-4 log files. I would li...
by z001k6jr New Member in Splunk Search 01-07-2016
0 3
0
3
deborahdigges
I have two log statements: daily.cron run at startTime daily.cron complete at endTime. I am trying to extract the S...
by deborahdigges New Member in Splunk Search 01-07-2016
0 2
0
2
dpoloche
I have two searches that I am trying to combine into one and keep running into roadblocks. Preferably, I would be abl...
by dpoloche Explorer in Splunk Search 01-07-2016
1 6
1
6
fmpa_isaac
Hello, I am trying to build a regex to extract fields from my data below. I am not a programmer so I am not too fam...
by fmpa_isaac Path Finder in Splunk Search 01-07-2016
0 5
0
5
govindparashar1
Hello This is my data: 2015-07-24 12:18:05 A=10 B=20 C=30 D=15 2015-07-24 12:18:15 A=20 B=210 C=320 D=150 2015-07-2...
by govindparashar1 New Member in Splunk Search 01-07-2016
0 2
0
2
SrinivasaC
Working on some client data, sample data format looks like: Item status -------------------------- AAA success B...
by SrinivasaC Path Finder in Splunk Search 01-07-2016
0 3
0
3
adicoza786
Hi, I have the following sample field in my log. filter=somename89898+20+O I want to ideally extract 3 fields wit...
by adicoza786 Explorer in Splunk Search 01-06-2016
0 4
0
4
hqw
Hi , I used match command in eval wildcards like below: shop_tags have many tags, A and B just two of them to identi...
by hqw Path Finder in Splunk Search 01-06-2016
0 4
0
4
mcomfurf
I'm indexing a field with DBConnect that contains the backslash character, eg \, in order to escape quotation marks a...
by mcomfurf Path Finder in Splunk Search 01-06-2016
0 4
0
4
t9445
Apologies if this is blatantly obvious. I have been troubleshooting search performance, and like many others, have g...
by t9445 Path Finder in Splunk Search 01-06-2016
1 7
1
7
sat94541
We have 5 Node SHC member on splunk version 6.3. The Captain election is not suceeding. We followed steps and cleare...
by sat94541 Communicator in Splunk Search 01-06-2016
0 3
0
3
parameshjava
Currently I am using the search below to generate an error codes report in my application. source="log_file_name.log...
by parameshjava Explorer in Splunk Search 01-06-2016
0 1
0
1
evgenyv
Is it possible to specify a pattern or regular expression for allowed and default indexes in the role definition? [r...
by evgenyv Explorer in Splunk Search 01-06-2016
0 1
0
1
jganger
I found another question on this same subject, but haven't found an answer. For instance, I'm trying to search for a...
by jganger Explorer in Splunk Search 01-06-2016
0 9
0
9
ErikaE
My search looks like this: index=index_name source="Source A.csv" | eval Start2=strptime(Start, "%m/%d/%Y%H:%M") | ...
by ErikaE Communicator in Splunk Search 01-06-2016
0 6
0
6
vincenty
Hi I'm new to splunk. I want to search "exception" over a lot of different types of log files with a return of a tabu...
by vincenty Explorer in Splunk Search 01-06-2016
0 5
0
5
clyde772
I had some pre-processing requirement using splunk real-time search, so once I put together those results, I would li...
by clyde772 Communicator in Splunk Search 01-06-2016
0 5
0
5
dankinder
The default duration output from go (golang) is to use a single float with one or two characters identifying the unit...
by dankinder New Member in Splunk Search 01-05-2016
0 1
0
1
David
Experience Seen: in an ES environment (though not tied to ES), a | tstats search for an accelerated data model return...
by David Splunk Employee Splunk Employee in Splunk Search 01-05-2016
1 1
1
1
jameskerivan
Hi I have a field which I would like to extract a field from the XML being displayed. The only problem is the fiel...
by jameskerivan Explorer in Splunk Search 01-05-2016
0 7
0
7
prakash007
Can anyone please explain this search? It's for average request execution: index=main sourcetype=access_combined OR ...
by prakash007 Builder in Splunk Search 01-05-2016
0 5
0
5
muralianup
I have a CSV with a fields Recipient, Sender, File name..etc which is currently set to be monitored from a remote mac...
by muralianup Communicator in Splunk Search 01-05-2016
0 1
0
1
Get Updates on the Splunk Community!

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...

Index This | What has goals but no motivation?

June 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...